cURL Auth, TLS, and Proxy Security/Use a CA certificate directory

Use a directory of CA certificates instead of a single bundle file.

Section: TLS and Certificates

Use a CA certificate directory

bash
bash
curl --capath /etc/ssl/certs https://example.com
Explanation

Some systems prefer hashed CA certificate directories.

Learn the surrounding workflow

Compare similar commands or jump into common fixes when this command is part of a bigger troubleshooting path.

Related commands

Same sheet · prioritizing TLS and Certificates
Require TLS 1.2
Require TLS 1.2 or newer for the connection.
OpenIn sheetbashsame section
Set maximum TLS version
Cap the TLS protocol version used by curl.
OpenIn sheetbashsame section
Use a PKCS#12 client certificate
Authenticate with a P12 / PFX certificate bundle.
OpenIn sheetbashsame section
Pin a public key
Verify the server public key against a pinned key.
OpenIn sheetbashsame section
Use a certificate revocation list
Check server certs against a CRL file.
OpenIn sheetbashsame section
Request certificate status checks
Require certificate status validation via TLS stapling when supported.
OpenIn sheetbashsame section